PT-2024-31064 · Apple · Apple Macos

Hossein Lotfi

+1

·

Published

2024-10-28

·

Updated

2025-07-11

·

CVE-2024-44236

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions macOS versions prior to 13.7.1 macOS versions prior to 14.7.1
Description An out-of-bounds access issue was addressed with improved bounds checking. Processing a maliciously crafted file may lead to unexpected app termination. The issue is due to the lack of proper validation of lutAToBType and lutBToAType tag types.
Recommendations For macOS versions prior to 13.7.1, update to macOS Ventura 13.7.1 or later. For macOS versions prior to 14.7.1, update to macOS Sonoma 14.7.1 or later.

Fix

RCE

Out of bounds Read

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2024-44236
ZDI-24-1445

Affected Products

Apple Macos